「password」を含む日記 RSS

はてなキーワード: passwordとは

2020-05-23

anond:20200523114717

割と有名で password を passw0rd に置き換えるみたいなみたいな変換のひとつとして攻撃対象になるからもとのワードが単純な単語一つじゃあんまりセキュリティレベル高くないと思う


2020-05-12

Terms of Service - Turnip app

These Terms of Use (hereinafter referred to as the "Terms") The service provided by the Company (hereinafter referred to as the "Service") The terms and conditions of use of the Website are set forth below. All registered users ("Users"). You are required to use the Service in accordance with these Terms.

Article 1 (Application)

These terms and conditions shall apply to any relationship between the User and the Company in relation to the use of the Service.

Article 2 (User registration)

The registration applicant applies for registration by the method prescribed by the Company, and by the Company's approval of this, the registration shall be completed.

The Company may not approve an application for user registration if it is determined that the applicant for user registration has any of the following reasons, and the Company shall have no obligation to disclose the reasons for this.

(1) When false information is reported when applying for user registration

(2) When an application is made by a person who has violated this agreement

(3) In any other case where the Company deems it inappropriate to register for use

Article 3 (Management of User ID and Password)

Users shall manage their user ID and password for the Service at their own risk.

You may not transfer or lend your user ID and password to any third party under any circumstances. When a user logs in with a user ID and password combination that matches the registered information, the user is deemed to be the registered user of the user ID.

Article 4 (Usage fee and payment method)

Only if the User agrees to purchase the Service, the User shall pay the fees separately determined by the Company and displayed prior to purchase on the Service in the manner specified by the Company as compensation for the use of the Service.

The free trial offer applies to initial registration only.

No refunds can be given for purchased paid services, regardless of the reason.

Article 5 (Prohibited items)

Users shall not engage in any of the following acts when using the Service

(1) Acts that violate laws and regulations or public order and morals

(2) Acts related to criminal acts.

(3) An act that destroys or interferes with the function of our server or network

(4) Actions that may interfere with the operation of the Company's services

(5) The act of directly or indirectly providing benefits to antisocial forces in connection with the Company's services

(6) Any other actions that the Company deems inappropriate.

Article 6 (Suspension of provision of the Service, etc.)

The Company may suspend or discontinue the provision of the Service in whole or in part without prior notice to the User if the Company determines that any of the following reasons exist

(1) When performing maintenance, inspection or updating of the computer system for the Service

(2) When the provision of the Service becomes difficult due to force majeure such as earthquake, lightning, fire, power failure or natural disaster.

(3) When the computer or communication line, etc. is stopped due to an accident

(4) In other cases where the Company judges that it is difficult to provide the Service.

The Company shall not be liable for any disadvantage or damage suffered by the User or any third party due to the suspension or interruption of the provision of the Service, for any reason whatsoever.

Article 7 (Restriction of Use and Cancellation of Registration)

The Company may, without prior notice, restrict the use of the Service in whole or in part, or terminate the user's registration as a user, in the following cases

(1) In the event of a breach of any of the provisions of these Terms of Use

(2) If it is found that there is a falsehood in the registered information

(3) In any other case where the Company deems the use of the Service to be inappropriate.

The Company shall not be held responsible for any damage caused to the User as a result of any action taken by the Company in accordance with this Article.

Article 8 (Disclaimer)

The Company's liability for default shall be discharged in the absence of willful or gross negligence on the part of the Company.

The Company shall not be responsible for any transactions, communications, or disputes that occur between the User and other Users or third parties with respect to the Service.

Article 9 (Change of service content, etc.)

The Company may change the contents of the Service or discontinue the provision of the Service without notice to the User, and the Company shall not be liable for any damage caused to the User as a result of this.

Article 10 (Change of Terms of Use)

The Company reserves the right to change this Agreement at any time without notice to the User, if it deems it necessary.

Article 11 (Notice or Communication)

Any notice or communication between the User and the Company shall be made in a manner determined by the Company.

Article 12 (Prohibition of assignment of rights and obligations)

You may not assign or pledge your position in the User Agreement or your rights or obligations under this Agreement to any third party without the prior written consent of the Company.

Article 13 (Governing Law and Jurisdiction)

These terms and conditions shall be governed by and construed in accordance with the laws of Japan.

If any dispute arises in relation to the Service, the court having jurisdiction over the location of the Company's head office shall be the exclusive agreed jurisdiction.

Last updated on August 11, 2019.

2020-05-07

Terms of Service Animal Turnips App

Terms of Use

These Terms of Use (hereinafter referred to as the "Terms") The service provided by the Company (hereinafter referred to as the "Service") The terms and conditions of use of the Website are set forth below. All registered users ("Users"). You are required to use the Service in accordance with these Terms.

Article 1 (Application)

These terms and conditions shall apply to any relationship between the User and the Company in relation to the use of the Service.

Article 2 (User registration)

The registration applicant applies for registration by the method prescribed by the Company, and by the Company's approval of this, the registration shall be completed.

The Company may not approve an application for user registration if it is determined that the applicant for user registration has any of the following reasons, and the Company shall have no obligation to disclose the reasons for this.

(1) When false information is reported when applying for user registration

(2) When an application is made by a person who has violated this agreement

(3) In any other case where the Company deems it inappropriate to register for use

Article 3 (Management of User ID and Password)

Users shall manage their user ID and password for the Service at their own risk.

You may not transfer or lend your user ID and password to any third party under any circumstances. When a user logs in with a user ID and password combination that matches the registered information, the user is deemed to be the registered user of the user ID.

Article 4 (Usage fee and payment method)

Only if the User agrees to purchase the Service, the User shall pay the fees separately determined by the Company and displayed prior to purchase on the Service in the manner specified by the Company as compensation for the use of the Service.

The free trial offer applies to initial registration only.

No refunds can be given for purchased paid services, regardless of the reason.

Article 5 (Prohibited items)

Users shall not engage in any of the following acts when using the Service

(1) Acts that violate laws and regulations or public order and morals

(2) Acts related to criminal acts.

(3) An act that destroys or interferes with the function of our server or network

(4) Actions that may interfere with the operation of the Company's services

(5) The act of directly or indirectly providing benefits to antisocial forces in connection with the Company's services

(6) Any other actions that the Company deems inappropriate.

Article 6 (Suspension of provision of the Service, etc.)

The Company may suspend or discontinue the provision of the Service in whole or in part without prior notice to the User if the Company determines that any of the following reasons exist

(1) When performing maintenance, inspection or updating of the computer system for the Service

(2) When the provision of the Service becomes difficult due to force majeure such as earthquake, lightning, fire, power failure or natural disaster.

(3) When the computer or communication line, etc. is stopped due to an accident

(4) In other cases where the Company judges that it is difficult to provide the Service.

The Company shall not be liable for any disadvantage or damage suffered by the User or any third party due to the suspension or interruption of the provision of the Service, for any reason whatsoever.

Article 7 (Restriction of Use and Cancellation of Registration)

The Company may, without prior notice, restrict the use of the Service in whole or in part, or terminate the user's registration as a user, in the following cases

(1) In the event of a breach of any of the provisions of these Terms of Use

(2) If it is found that there is a falsehood in the registered information

(3) In any other case where the Company deems the use of the Service to be inappropriate.

The Company shall not be held responsible for any damage caused to the User as a result of any action taken by the Company in accordance with this Article.

Article 8 (Disclaimer)

The Company's liability for default shall be discharged in the absence of willful or gross negligence on the part of the Company.

The Company shall not be responsible for any transactions, communications, or disputes that occur between the User and other Users or third parties with respect to the Service.

Article 9 (Change of service content, etc.)

The Company may change the contents of the Service or discontinue the provision of the Service without notice to the User, and the Company shall not be liable for any damage caused to the User as a result of this.

Article 10 (Change of Terms of Use)

The Company reserves the right to change this Agreement at any time without notice to the User, if it deems it necessary.

Article 11 (Notice or Communication)

Any notice or communication between the User and the Company shall be made in a manner determined by the Company.

Article 12 (Prohibition of assignment of rights and obligations)

You may not assign or pledge your position in the User Agreement or your rights or obligations under this Agreement to any third party without the prior written consent of the Company.

Article 13 (Governing Law and Jurisdiction)

These terms and conditions shall be governed by and construed in accordance with the laws of Japan.

If any dispute arises in relation to the Service, the court having jurisdiction over the location of the Company's head office shall be the exclusive agreed jurisdiction.

Last updated on July 11, 2019.

2020-04-26

anond:20200426204215

Password Checkup 拡張機能、入れてるんですが、(いまのところ大丈夫みたい)

増田さんのChromeには、他の入れてるんですか? 

いいのがあったら教えて下さるとうれしいです。

2020-04-21

Kimetsu - Privacy Policy

Accepting the Terms Privacy Policy

These Terms of Service ("Terms") are a legal agreement between we and you ("you"). By installing or using any application ("Service") you agree to be bound by these Terms. By accessing or using the Service, you agree that you have read, understood, and accept to be bound by the Terms. We reserve the right, in its sole discretion, to modify or revise these Terms at any time, and you agree to be bound by such modifications or revisions. If you do not agree to the Terms, do not use the Service.

Users are responsible for periodically viewing the Terms. Your continued use of the Service after a change or update has been made will constitute your acceptance to the revised Terms. If you do not agree to the Terms your only remedy is to discontinue your use of the Service and cancel any accounts you have made using the Service.

We reserve the right to refuse any user access to the Services without notice for any reason, including, but not limited to, a violation of the Terms.

You represent that you are 13 years old or older. If you are between the ages of 13 and 18, you represent that your legal guardian has reviewed and agrees to the Terms.

Intellectual Property/Ownership

All materials that are part of the Service (including, but not limited to, designs, text, graphics, pictures, video, information, applications, software, music, sound and other files, and their selection and arrangement) are protected by law from unauthorized use.

We grant you a personal, non-exclusive, non-transferable, revocable, limited scope license to use the Service solely for the purpose of viewing and using the applicable Services and for no other purpose whatsoever. Your license to use the Services is limited by these Terms.

User Content

You agree that you are willingly publishing the content on the Service using technology and tools provided by us. You understand and agree that you may not distribute, sell, transfer or license this content and/or application in any manner, in any country, or on any social network or another medium without the explicit written permission of us. We reserve the right to remove and permanently delete any User Content from the Service with or without notice.

Rules of Conduct/Usage

You agree that all your communications with the Communication Channels are public, and thus you have no expectation of privacy regarding your use of the Communication Channels. We is not responsible for information that you choose to share on the Communication Channels, or for the actions of other users.

Privacy and Protection of Personal Information

By using the Service, you agree to the collection and use of your personal information as outlined in this Privacy Policy. We may amend the Privacy Policy from time to time, and we encourage you to consult the Privacy Policy regularly for changes.

Cookies

A cookie is a small data file that we transfer to your computer’s hard disk, generally to quickly identify a user's computer and to "remember" things about the user's visit, such as your preferences or a user name and password. The Service sends cookies to your computer when you access or view the content of us. The information contained in a cookie may be linked to your personal information for purposes such as improving the quality of our service, tailoring recommendations to your interests, and making the Service easier to use. You can disable cookies at any time, although you may not be able to access or use features of the Service.

Third-Party Advertising Companies

We may use third-party advertising companies to serve ads on the Service. We do not provide any personal information to third-party advertising companies on a non-aggregate basis. Our system and the third-party advertising technology may use aggregate information, non-personal information, Our cookies on your hard drive and your use of the Service to target advertisements. In addition, advertisers may use other third-party advertising technology to target advertising on other sites. If advertisements are served to you, a unique third-party cookie or cookies may be placed on your computer. Similarly, third-party advertising companies may provide us with pixel tags (also called “clear gifs” or “beacons”) to help manage and optimize online advertising. Beacons enable us to recognize a browser’s cookie when a browser visits the site on which is a beacon is located, and to learn which banner ads bring users to a given site.

Changing or Deleting Your Information

You may review, update, correct or delete any personal information by changing the applicable information in your profile page on Facebook and/or another social network (s). If you completely delete all this information, your account may become deactivated. If you would like us to delete your record in our system, please contact us and we will attempt to accommodate your request if we are not legally obligated to retain the record.

Security

We have put in place reasonable technical and organizational measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration or disclosure. However, we cannot guarantee that unauthorized third parties will never be able to overcome those measures or use your personal information for improper purposes. Also please note that email and messaging systems are not considered secure, so we discourage you from sending us personal information through these mediums.

Policy Regarding Children

The Service is not geared toward children under the age of 13 and we do not knowingly collect personal information from children under the age of 13. If we learn that a child under 13 has provided us with personal information we will delete such information from our files as quickly as possible.

Disclaimer of Warranty; Limitation of Liability

You agree that your use of the Service shall be at your sole risk. To the fullest extent permitted by law, We, its officers, directors, employees, and agents disclaim all warranties, express or implies, in connection with the website and your use thereof including implied warranties of title, merchantability, fitness for a particular purpose or non-infringement, accuracy, authority, completeness, usefulness, and timeliness. We make no warranties or representations about the accuracy or completeness of the content of the Service and of the content of any sites linked to the Service; We assume no liability or responsibility for any (i) errors, mistakes, or inaccuracies of content, (ii) personal injury or property damage, of any nature whatsoever, resulting from your access to and use of the Service, (iii) any unauthorized access to or use of our secure servers and/or any and all personal information and/or financial information stored therein, (iv) any interruption or cessation of transmission to or from the Service, (v) any bugs, viruses, trojan horses, or the like which may be transmitted to or through the Service by any third party, and/or (vi) any errors or omissions in any content or for any loss or damage of any kind incurred as a result of the use of any content posted, emailed, transmitted, or otherwise made available via the Service.

In no event will We, its directors, officers, agents, contractors, partners and employees, be liable to you or any third person for any special, direct, indirect, incidental, special, punitive, or consequential damages whatsoever including any lost profits or lost data arising from your use of the Service or other materials on, accessed through or downloaded from the Service, whether based on warranty, contract, tort, or any other legal theory, and whether or not We have been advised of the possibility of these damages. The foregoing limitation of liability shall apply to the fullest extent permitted by law in the applicable jurisdiction. You specifically acknowledge that We shall not be liable for user submissions or the defamatory, offensive, or illegal conduct of any third party and that the risk of harm or damage from the foregoing rests entirely with you.

You agree to indemnify and hold We, and each of its directors, officers, agents, contractors, partners, and employees, harmless from and against any loss, liability, claim, demand, damages, costs and expenses, including reasonable attorney's fees, arising out of or in connection with (i) your use of and access to the Service; (ii) your violation of any term of these Terms of Service; (iii) your violation of any third party right, including without limitation any copyright, property, or privacy right; (iv) any claim that one of your User Submissions caused damage to a third party; or (v) any Content you post or share on or through the Service.

General

By visiting or using the Service, you agree that the laws of UK, without regard to principles of conflict of laws and regardless of your location, will govern these Terms of Service and any dispute of any sort that might arise between you and us.

Contacting Us

If you have any questions about these Terms of Service, please contact us at damonskimetsu.contact@gmail.com

2020-04-01

Linuxから LINE に通知を送る

LINE Notify を使えばできるようだ。LINE通知がきたらスマホアラートするようにした上で、返事はLinuxからするってこともできそう。スマホ文字入力しんどいし。

LinuxOSに乗り換えるに際し懸念事項

2020-03-29

Privacy Policy 背景透過アプリ

## Accepting the Terms and Privacy Policy

These Terms of Service ("Terms") are a legal agreement between we and you ("you"). By installing or using any application ("Service") you agree to be bound by these Terms. By accessing or using the Service, you agree that you have read, understood, and accept to be bound by the Terms. We reserve the right, in its sole discretion, to modify or revise these Terms at any time, and you agree to be bound by such modifications or revisions. If you do not agree to the Terms, do not use the Service.

Users are responsible for periodically viewing the Terms. Your continued use of the Service after a change or update has been made will constitute your acceptance to the revised Terms. If you do not agree to the Terms your only remedy is to discontinue your use of the Service and cancel any accounts you have made using the Service.

We reserve the right to refuse any user access to the Services without notice for any reason, including, but not limited to, a violation of the Terms.

You represent that you are 13 years old or older. If you are between the ages of 13 and 18, you represent that your legal guardian has reviewed and agrees to the Terms.

## Intellectual Property/Ownership

All materials that are part of the Service (including, but not limited to, designs, text, graphics, pictures, video, information, applications, software, music, sound and other files, and their selection and arrangement) are protected by law from unauthorized use.

We grant you a personal, non-exclusive, non-transferable, revocable, limited scope license to use the Service solely for the purpose of viewing and using the applicable Services and for no other purpose whatsoever. Your license to use the Services is limited by these Terms.

User Content

You agree that you are willingly publishing the content on the Service using technology and tools provided by us. You understand and agree that you may not distribute, sell, transfer or license this content and/or application in any manner, in any country, or on any social network or another medium without the explicit written permission of us. We reserve the right to remove and permanently delete any User Content from the Service with or without notice.

Rules of Conduct/Usage

You agree that all your communications with the Communication Channels are public, and thus you have no expectation of privacy regarding your use of the Communication Channels. We is not responsible for information that you choose to share on the Communication Channels, or for the actions of other users.

Privacy and Protection of Personal Information

By using the Service, you agree to the collection and use of your personal information as outlined in this Privacy Policy. We may amend the Privacy Policy from time to time, and we encourage you to consult the Privacy Policy regularly for changes.

Cookies

A cookie is a small data file that we transfer to your computer’s hard disk, generally to quickly identify a user's computer and to "remember" things about the user's visit, such as your preferences or a user name and password. The Service sends cookies to your computer when you access or view the content of us. The information contained in a cookie may be linked to your personal information for purposes such as improving the quality of our service, tailoring recommendations to your interests, and making the Service easier to use. You can disable cookies at any time, although you may not be able to access or use features of the Service.

Third-Party Advertising Companies

We may use third-party advertising companies to serve ads on the Service. We do not provide any personal information to third-party advertising companies on a non-aggregate basis. Our system and the third-party advertising technology may use aggregate information, non-personal information, Our cookies on your hard drive and your use of the Service to target advertisements. In addition, advertisers may use other third-party advertising technology to target advertising on other sites. If advertisements are served to you, a unique third-party cookie or cookies may be placed on your computer. Similarly, third-party advertising companies may provide us with pixel tags (also called “clear gifs” or “beacons”) to help manage and optimize online advertising. Beacons enable us to recognize a browser’s cookie when a browser visits the site on which is a beacon is located, and to learn which banner ads bring users to a given site.

Changing or Deleting Your Information

You may review, update, correct or delete any personal information by changing the applicable information in your profile page on Facebook and/or another social network (s). If you completely delete all this information, your account may become deactivated. If you would like us to delete your record in our system, please contact us and we will attempt to accommodate your request if we are not legally obligated to retain the record.

Security

We have put in place reasonable technical and organizational measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration or disclosure. However, we cannot guarantee that unauthorized third parties will never be able to overcome those measures or use your personal information for improper purposes. Also please note that email and messaging systems are not considered secure, so we discourage you from sending us personal information through these mediums.

Policy Regarding Children

The Service is not geared toward children under the age of 13 and we do not knowingly collect personal information from children under the age of 13. If we learn that a child under 13 has provided us with personal information we will delete such information from our files as quickly as possible.

Disclaimer of Warranty; Limitation of Liability

You agree that your use of the Service shall be at your sole risk. To the fullest extent permitted by law, We, its officers, directors, employees, and agents disclaim all warranties, express or implies, in connection with the website and your use thereof including implied warranties of title, merchantability, fitness for a particular purpose or non-infringement, accuracy, authority, completeness, usefulness, and timeliness. We make no warranties or representations about the accuracy or completeness of the content of the Service and of the content of any sites linked to the Service; We assume no liability or responsibility for any (i) errors, mistakes, or inaccuracies of content, (ii) personal injury or property damage, of any nature whatsoever, resulting from your access to and use of the Service, (iii) any unauthorized access to or use of our secure servers and/or any and all personal information and/or financial information stored therein, (iv) any interruption or cessation of transmission to or from the Service, (v) any bugs, viruses, trojan horses, or the like which may be transmitted to or through the Service by any third party, and/or (vi) any errors or omissions in any content or for any loss or damage of any kind incurred as a result of the use of any content posted, emailed, transmitted, or otherwise made available via the Service.

In no event will We, its directors, officers, agents, contractors, partners and employees, be liable to you or any third person for any special, direct, indirect, incidental, special, punitive, or consequential damages whatsoever including any lost profits or lost data arising from your use of the Service or other materials on, accessed through or downloaded from the Service, whether based on warranty, contract, tort, or any other legal theory, and whether or not We have been advised of the possibility of these damages. The foregoing limitation of liability shall apply to the fullest extent permitted by law in the applicable jurisdiction. You specifically acknowledge that We shall not be liable for user submissions or the defamatory, offensive, or illegal conduct of any third party and that the risk of harm or damage from the foregoing rests entirely with you.

You agree to indemnify and hold We, and each of its directors, officers, agents, contractors, partners, and employees, harmless from and against any loss, liability, claim, demand, damages, costs and expenses, including reasonable attorney's fees, arising out of or in connection with (i) your use of and access to the Service; (ii) your violation of any term of these Terms of Service; (iii) your violation of any third party right, including without limitation any copyright, property, or privacy right; (iv) any claim that one of your User Submissions caused damage to a third party; or (v) any Content you post or share on or through the Service.

General

By visiting or using the Service, you agree that the laws of UK, without regard to principles of conflict of laws and regardless of your location, will govern these Terms of Service and any dispute of any sort that might arise between you and us.

Contacting Us

If you have any questions about these Terms of Service, please contact us at reposting23334.contact@gmail.com

2020-03-22

Privacy Policy - リポスト for インスタ

## Accepting the Terms and Privacy Policy

These Terms of Service ("Terms") are a legal agreement between we and you ("you"). By installing or using any application ("Service") you agree to be bound by these Terms. By accessing or using the Service, you agree that you have read, understood, and accept to be bound by the Terms. We reserve the right, in its sole discretion, to modify or revise these Terms at any time, and you agree to be bound by such modifications or revisions. If you do not agree to the Terms, do not use the Service.

Users are responsible for periodically viewing the Terms. Your continued use of the Service after a change or update has been made will constitute your acceptance to the revised Terms. If you do not agree to the Terms your only remedy is to discontinue your use of the Service and cancel any accounts you have made using the Service.

We reserve the right to refuse any user access to the Services without notice for any reason, including, but not limited to, a violation of the Terms.

You represent that you are 13 years old or older. If you are between the ages of 13 and 18, you represent that your legal guardian has reviewed and agrees to the Terms.

## Intellectual Property/Ownership

All materials that are part of the Service (including, but not limited to, designs, text, graphics, pictures, video, information, applications, software, music, sound and other files, and their selection and arrangement) are protected by law from unauthorized use.

We grant you a personal, non-exclusive, non-transferable, revocable, limited scope license to use the Service solely for the purpose of viewing and using the applicable Services and for no other purpose whatsoever. Your license to use the Services is limited by these Terms.

User Content

You agree that you are willingly publishing the content on the Service using technology and tools provided by us. You understand and agree that you may not distribute, sell, transfer or license this content and/or application in any manner, in any country, or on any social network or another medium without the explicit written permission of us. We reserve the right to remove and permanently delete any User Content from the Service with or without notice.

Rules of Conduct/Usage

You agree that all your communications with the Communication Channels are public, and thus you have no expectation of privacy regarding your use of the Communication Channels. We is not responsible for information that you choose to share on the Communication Channels, or for the actions of other users.

Privacy and Protection of Personal Information

By using the Service, you agree to the collection and use of your personal information as outlined in this Privacy Policy. We may amend the Privacy Policy from time to time, and we encourage you to consult the Privacy Policy regularly for changes.

Cookies

A cookie is a small data file that we transfer to your computer’s hard disk, generally to quickly identify a user's computer and to "remember" things about the user's visit, such as your preferences or a user name and password. The Service sends cookies to your computer when you access or view the content of us. The information contained in a cookie may be linked to your personal information for purposes such as improving the quality of our service, tailoring recommendations to your interests, and making the Service easier to use. You can disable cookies at any time, although you may not be able to access or use features of the Service.

Third-Party Advertising Companies

We may use third-party advertising companies to serve ads on the Service. We do not provide any personal information to third-party advertising companies on a non-aggregate basis. Our system and the third-party advertising technology may use aggregate information, non-personal information, Our cookies on your hard drive and your use of the Service to target advertisements. In addition, advertisers may use other third-party advertising technology to target advertising on other sites. If advertisements are served to you, a unique third-party cookie or cookies may be placed on your computer. Similarly, third-party advertising companies may provide us with pixel tags (also called “clear gifs” or “beacons”) to help manage and optimize online advertising. Beacons enable us to recognize a browser’s cookie when a browser visits the site on which is a beacon is located, and to learn which banner ads bring users to a given site.

Changing or Deleting Your Information

You may review, update, correct or delete any personal information by changing the applicable information in your profile page on Facebook and/or another social network (s). If you completely delete all this information, your account may become deactivated. If you would like us to delete your record in our system, please contact us and we will attempt to accommodate your request if we are not legally obligated to retain the record.

Security

We have put in place reasonable technical and organizational measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration or disclosure. However, we cannot guarantee that unauthorized third parties will never be able to overcome those measures or use your personal information for improper purposes. Also please note that email and messaging systems are not considered secure, so we discourage you from sending us personal information through these mediums.

Policy Regarding Children

The Service is not geared toward children under the age of 13 and we do not knowingly collect personal information from children under the age of 13. If we learn that a child under 13 has provided us with personal information we will delete such information from our files as quickly as possible.

Disclaimer of Warranty; Limitation of Liability

You agree that your use of the Service shall be at your sole risk. To the fullest extent permitted by law, We, its officers, directors, employees, and agents disclaim all warranties, express or implies, in connection with the website and your use thereof including implied warranties of title, merchantability, fitness for a particular purpose or non-infringement, accuracy, authority, completeness, usefulness, and timeliness. We make no warranties or representations about the accuracy or completeness of the content of the Service and of the content of any sites linked to the Service; We assume no liability or responsibility for any (i) errors, mistakes, or inaccuracies of content, (ii) personal injury or property damage, of any nature whatsoever, resulting from your access to and use of the Service, (iii) any unauthorized access to or use of our secure servers and/or any and all personal information and/or financial information stored therein, (iv) any interruption or cessation of transmission to or from the Service, (v) any bugs, viruses, trojan horses, or the like which may be transmitted to or through the Service by any third party, and/or (vi) any errors or omissions in any content or for any loss or damage of any kind incurred as a result of the use of any content posted, emailed, transmitted, or otherwise made available via the Service.

In no event will We, its directors, officers, agents, contractors, partners and employees, be liable to you or any third person for any special, direct, indirect, incidental, special, punitive, or consequential damages whatsoever including any lost profits or lost data arising from your use of the Service or other materials on, accessed through or downloaded from the Service, whether based on warranty, contract, tort, or any other legal theory, and whether or not We have been advised of the possibility of these damages. The foregoing limitation of liability shall apply to the fullest extent permitted by law in the applicable jurisdiction. You specifically acknowledge that We shall not be liable for user submissions or the defamatory, offensive, or illegal conduct of any third party and that the risk of harm or damage from the foregoing rests entirely with you.

You agree to indemnify and hold We, and each of its directors, officers, agents, contractors, partners, and employees, harmless from and against any loss, liability, claim, demand, damages, costs and expenses, including reasonable attorney's fees, arising out of or in connection with (i) your use of and access to the Service; (ii) your violation of any term of these Terms of Service; (iii) your violation of any third party right, including without limitation any copyright, property, or privacy right; (iv) any claim that one of your User Submissions caused damage to a third party; or (v) any Content you post or share on or through the Service.

General

By visiting or using the Service, you agree that the laws of UK, without regard to principles of conflict of laws and regardless of your location, will govern these Terms of Service and any dispute of any sort that might arise between you and us.

Contacting Us

If you have any questions about these Terms of Service, please contact us at reposting23334.contact@gmail.com

Privacy Policy - リポスト for インスタ

## Accepting the Terms & Privacy Policy

These Terms of Service ("Terms") are a legal agreement between we and you ("you"). By installing or using any application ("Service") you agree to be bound by these Terms. By accessing or using the Service, you agree that you have read, understood, and accept to be bound by the Terms. We reserve the right, in its sole discretion, to modify or revise these Terms at any time, and you agree to be bound by such modifications or revisions. If you do not agree to the Terms, do not use the Service.

Users are responsible for periodically viewing the Terms. Your continued use of the Service after a change or update has been made will constitute your acceptance to the revised Terms. If you do not agree to the Terms your only remedy is to discontinue your use of the Service and cancel any accounts you have made using the Service.

We reserve the right to refuse any user access to the Services without notice for any reason, including, but not limited to, a violation of the Terms.

You represent that you are 13 years old or older. If you are between the ages of 13 and 18, you represent that your legal guardian has reviewed and agrees to the Terms.

## Intellectual Property/Ownership

All materials that are part of the Service (including, but not limited to, designs, text, graphics, pictures, video, information, applications, software, music, sound and other files, and their selection and arrangement) are protected by law from unauthorized use.

We grant you a personal, non-exclusive, non-transferable, revocable, limited scope license to use the Service solely for the purpose of viewing and using the applicable Services and for no other purpose whatsoever. Your license to use the Services is limited by these Terms.

User Content

You agree that you are willingly publishing the content on the Service using technology and tools provided by us. You understand and agree that you may not distribute, sell, transfer or license this content and/or application in any manner, in any country, or on any social network or another medium without the explicit written permission of us. We reserve the right to remove and permanently delete any User Content from the Service with or without notice.

Rules of Conduct/Usage

You agree that all your communications with the Communication Channels are public, and thus you have no expectation of privacy regarding your use of the Communication Channels. We is not responsible for information that you choose to share on the Communication Channels, or for the actions of other users.

Privacy and Protection of Personal Information

By using the Service, you agree to the collection and use of your personal information as outlined in this Privacy Policy. We may amend the Privacy Policy from time to time, and we encourage you to consult the Privacy Policy regularly for changes.

Cookies

A cookie is a small data file that we transfer to your computer’s hard disk, generally to quickly identify a user's computer and to "remember" things about the user's visit, such as your preferences or a user name and password. The Service sends cookies to your computer when you access or view the content of us. The information contained in a cookie may be linked to your personal information for purposes such as improving the quality of our service, tailoring recommendations to your interests, and making the Service easier to use. You can disable cookies at any time, although you may not be able to access or use features of the Service.

Third-Party Advertising Companies

We may use third-party advertising companies to serve ads on the Service. We do not provide any personal information to third-party advertising companies on a non-aggregate basis. Our system and the third-party advertising technology may use aggregate information, non-personal information, Our cookies on your hard drive and your use of the Service to target advertisements. In addition, advertisers may use other third-party advertising technology to target advertising on other sites. If advertisements are served to you, a unique third-party cookie or cookies may be placed on your computer. Similarly, third-party advertising companies may provide us with pixel tags (also called “clear gifs” or “beacons”) to help manage and optimize online advertising. Beacons enable us to recognize a browser’s cookie when a browser visits the site on which is a beacon is located, and to learn which banner ads bring users to a given site.

Changing or Deleting Your Information

You may review, update, correct or delete any personal information by changing the applicable information in your profile page on Facebook and/or another social network (s). If you completely delete all this information, your account may become deactivated. If you would like us to delete your record in our system, please contact us and we will attempt to accommodate your request if we are not legally obligated to retain the record.

Security

We have put in place reasonable technical and organizational measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration or disclosure. However, we cannot guarantee that unauthorized third parties will never be able to overcome those measures or use your personal information for improper purposes. Also please note that email and messaging systems are not considered secure, so we discourage you from sending us personal information through these mediums.

Policy Regarding Children

The Service is not geared toward children under the age of 13 and we do not knowingly collect personal information from children under the age of 13. If we learn that a child under 13 has provided us with personal information we will delete such information from our files as quickly as possible.

Disclaimer of Warranty; Limitation of Liability

You agree that your use of the Service shall be at your sole risk. To the fullest extent permitted by law, We, its officers, directors, employees, and agents disclaim all warranties, express or implies, in connection with the website and your use thereof including implied warranties of title, merchantability, fitness for a particular purpose or non-infringement, accuracy, authority, completeness, usefulness, and timeliness. We make no warranties or representations about the accuracy or completeness of the content of the Service and of the content of any sites linked to the Service; We assume no liability or responsibility for any (i) errors, mistakes, or inaccuracies of content, (ii) personal injury or property damage, of any nature whatsoever, resulting from your access to and use of the Service, (iii) any unauthorized access to or use of our secure servers and/or any and all personal information and/or financial information stored therein, (iv) any interruption or cessation of transmission to or from the Service, (v) any bugs, viruses, trojan horses, or the like which may be transmitted to or through the Service by any third party, and/or (vi) any errors or omissions in any content or for any loss or damage of any kind incurred as a result of the use of any content posted, emailed, transmitted, or otherwise made available via the Service.

In no event will We, its directors, officers, agents, contractors, partners and employees, be liable to you or any third person for any special, direct, indirect, incidental, special, punitive, or consequential damages whatsoever including any lost profits or lost data arising from your use of the Service or other materials on, accessed through or downloaded from the Service, whether based on warranty, contract, tort, or any other legal theory, and whether or not We have been advised of the possibility of these damages. The foregoing limitation of liability shall apply to the fullest extent permitted by law in the applicable jurisdiction. You specifically acknowledge that We shall not be liable for user submissions or the defamatory, offensive, or illegal conduct of any third party and that the risk of harm or damage from the foregoing rests entirely with you.

You agree to indemnify and hold We, and each of its directors, officers, agents, contractors, partners, and employees, harmless from and against any loss, liability, claim, demand, damages, costs and expenses, including reasonable attorney's fees, arising out of or in connection with (i) your use of and access to the Service; (ii) your violation of any term of these Terms of Service; (iii) your violation of any third party right, including without limitation any copyright, property, or privacy right; (iv) any claim that one of your User Submissions caused damage to a third party; or (v) any Content you post or share on or through the Service.

General

By visiting or using the Service, you agree that the laws of UK, without regard to principles of conflict of laws and regardless of your location, will govern these Terms of Service and any dispute of any sort that might arise between you and us.

Contacting Us

If you have any questions about these Terms of Service, please contact us at reposting23334.contact@gmail.com

2020-02-28

段階的にLinux

移行する計画カテゴリー化しようかな)

ググればそんなブログとかもありそうだ。しかし、今日はそういうのを見ない。

デュアルブート嫌いなので、本来ならば、デスクトップパソコンをもう一台しつらえてLinuxマシンとすべきだろうが、そんな金も暇もないので余っているWin7ノートパソコンに白羽の矢。どのみちサポート停止でオフライン専用マシンとなるところだからこいつをLinuxマシンにしつらえよう。

☆ やりたいこと

現状使っている無ファンWindowsマシンは、長時間連続運用すると熱暴走し、極端にレスが遅くなる。数時間ごとに、WinマシンLinuxマシンを交代で運用すればよかろう。これでいいのだ(バカボンのパパ)。

☆ Linuxでできないことども

できないことどもを列挙する。そうこれが大事だ。


VBmonoかいうのがあるらしく、Linuxでも使えるのでは?hidemaru editorは、vim. hidemaru macrosは、python or perl移植LINEは深刻な問題では?Chromeの補助機能経由でできるんだっけ?メーラーは?BirdLinuxでもできるのか?birdは使いたくない。webMailだな。K9Mailは?クラウドとしてMS OneDrive使っているけど、使いやすいのか?昨今スマホでもOneDriveアクセスできるけど( ^ω^)・・・なんでもかんでもGITHUBに放り込む?

2020-02-27

Terms of use: Follower Check +

Registered users (hereinafter referred to asusers”) shall use the Service in accordance with the Terms.

These Terms of Service (hereinafter referred to as the "Terms") determine the terms of use for the services provided by the Company (hereinafter referred to as the "Services").

Article 1 (Apply)

These Terms shall apply to any relationship between you and us regarding the use of the Services.

Article 2 (Registration)

A registration applicant shall apply for use registration according to the method prescribed by the Company, and the use registration shall be completed when the Company approves this.

The Company may not approve the application for use registration if it determines that the applicant for use registration has any of the following reasons, and shall have no obligation to disclose the reason.

(1) When filing false information when applying for use registration

(2) When the application is from a person who has violated these Terms

(3) In addition, if we judge that the use registration is not appropriate

Article 3 (User ID and Password Management)

Users shall manage the user ID and password of this service at their own risk.

Users may not transfer or lend their user IDs and passwords to third parties under any circumstances. If the combination of the user ID and password matches the registered information and the user logs in, the company considers the use by the user who has registered the user ID.

Article 4 (Usage Fee and Payment Method)

Only when the user consents to the purchase to use the Service, the Company shall separately determine the price for the use of the Service and pay the usage fee displayed before the purchase of the Service by the method specified by the Company.

The free trial campaign applies only to the first registration.

No refunds will be made for any paid services purchased, regardless of the reason.

Article 5 (Prohibitions)

Users must not do any of the following when using this service:

(1) Acts that violate laws or public order and morals

(2) Acts related to criminal acts

(3) Acts that destroy or obstruct our server or network functions

(4) Acts that may interfere with the operation of our services

(5) Acts that directly or indirectly benefit anti-social forces in connection with our services

(6) Other acts deemed inappropriate by the Company

Article 6 (Suspension of provision of this service, etc.)

The Company may suspend or suspend the provision of all or a part of the Service without prior notice to the User if it determines that any of the following events occur.

(1) When performing maintenance or updating of the computer system related to this service

(2) When it becomes difficult to provide this service due to force majeure such as earthquake, lightning, fire, power outage or natural disaster

(3) When a computer or communication line stops due to an accident

(4) In addition, if we judge it is difficult to provide this service

The Company shall not be liable for any disadvantage or damage suffered by the user or any third party due to suspension or interruption of the provision of this service for any reason.

Article 7 (Restrictions on use and cancellation of registration)

In the following cases, the Company may restrict the use of this service in whole or in part, or cancel the registration as a user without prior notice.

(1) In the case of violating any provision of these Terms

(2) When it turns out that the registered items are false

(3) In addition, if we judge that the use of this service is not appropriate

The Company shall not be liable for any damages caused to Users due to the actions performed by the Company based on this section.

Article 8 (Disclaimer)

Our default liability shall be waived if not due to our intentional or gross negligence.

The Company shall not be liable for any transactions, communications or disputes arising between the User and other users or third parties with respect to the Service.

Article 9 (Changes in service content, etc.)

We may change the contents of this service or stop providing this service without notifying the user, and we do not take any responsibility for any damage caused to the user by this.

Article 10 (Change of Terms of Use)

We may change these Terms at any time, without notice, if we deem it necessary.

Article 11 (Notification or communication)

Notice or communication between the user and us shall be made in a manner determined by us.

Article 12 (Prohibition of transfer of rights and obligations)

You may not transfer or provide security to any third party without your prior written consent to your position in the terms of use or any rights or obligations under these Terms.

Article 13 (Governing law and jurisdiction)

In interpreting these Terms, the laws of Japan shall be the governing law.

In case of any dispute regarding this service, the exclusive jurisdiction of the court having jurisdiction over the location of our head office shall be exclusive

2019-07-09

パスワードは当たり前のようにPCに付箋で貼ってあるし

サーバログイン用の共通パスワードpasswordに毛が生えたようなもの

ルーターとかのデフォルトパスワードが設定されているもの

共通パスワードに変更せずにデフォルトパスワードエクセル管理してるし

そのエクセルファイルはv1からv20ぐらいまでoldフォルダに入っていて最新版にはv21_最新.xlsxかになってるし

予算管理システムIEしか動かないし

しかシステムデータを1年分しか検索できないか

予算管理システムに投入した画面のスクリーンショットを所定の共有フォルダPDFで保存する決まりになっているし

それがちゃんと格納されているかどうかを四半期毎にチェックする必要があって

予算管理システムから吐き出したcsvファイルエクセルマクロで読み込んで

出力されたエクセルのシートを印刷して

ファイルを全部チェックできたら課長サインを貰って

それをPDFで保存して所定の共有フォルダPDFで保存する決まりになっていて

流石にこの現状をどうにかしようと予算管理システム刷新したんだけど

刷新を指揮していた人が異動して引き継いだ人は意味を分かっていなかったらしく

予算管理システムデータちゃん検索できるようになったのに

システムのどの画面のスクリーンショットを残すべきか議論して

結局OKボタンを押す前の状態スクショすることに落ち着いて

やっぱり四半期毎のチェックは必要だったりして

この状態デジタルトランスフォーメーションとか言い出してる地獄

2019-02-01

欧米インターネットヌクモリティを感じた話

海外版増田ことRedditで、久々に古き良きインターネットヌクモリティ(死語)に触れたので共有

今朝Redditを眺めていたら、「r/RoastMe」のとあるスレがPopular(ホッテントリみたいなもの)に上がってきていた。

「r/RoastMe」というのはReddit内の大人気subredditのひとつで、自分顔写真晒し不特定多数から感想コメントをもらうという過激な遊び場。

例えば、ダレノガレ明美みたいな派手目の女子がRoastMeすると"Your vagina password is PASSWORD"とか、アンガールズ山根みたいな男子がRoastMeすると"Jesus Christ. There’s not a dominant gene in his entire body."みたいな辛辣コメばんばんつく。

そのぶん自治ルールもしっかりしていて、違反投稿はRefuseされる。例えば、投稿した写真人物が「r/RoastMe」という紙を持っていない場合は本人の写真じゃない可能性があるのでRefuse。

自治ルールがしっかりしてるとはいえ辛辣コメントがついて傷ついた投稿者とかいるんだろうな~とか、いじめに使われたりしないのかな~とか心配したりもしていた。

で、今朝あがってきていたRoastMeを見たら、「私は17歳うつを患ってます。私を終わらせてください」みたいなコメントとともに気弱そうな男子顔写真投稿されていた。

反射的に「この子をRoastするのはマズいのでは」と思いながら人気コメント一覧をみたら、びっくり。

彼を励ます暖かいコメントばかりが、ずらりとならんでいた。

そしてスレ管理人が「君たちのコメントルールに反してるのでこのスレはRefuseな。でも君たちはfucking nice」とコメントが残されていた。

これが古き良きインターネットヌクモリティなんだよ。まだまだネットも捨てたもんじゃないと思ったね。

2019-01-29

Privacy Policy

Accepting the Terms & Privacy Policy

These Terms of Service ("Terms") are a legal agreement between we and you ("you"). By installing or using any application ("Service") you agree to be bound by these Terms. By accessing or using the Service, you agree that you have read, understood, and accept to be bound by the Terms. We reserve the right, in its sole discretion, to modify or revise these Terms at any time, and you agree to be bound by such modifications or revisions. If you do not agree to the Terms, do not use the Service.

Users are responsible for periodically viewing the Terms. Your continued use of the Service after a change or update has been made will constitute your acceptance to the revised Terms. If you do not agree to the Terms your only remedy is to discontinue your use of the Service and cancel any accounts you have made using the Service.

We reserve the right to refuse any user access to the Services without notice for any reason, including, but not limited to, a violation of the Terms.

You represent that you are 13 years old or older. If you are between the ages of 13 and 18, you represent that your legal guardian has reviewed and agrees to the Terms.

Intellectual Property/Ownership

All materials that are part of the Service (including, but not limited to, designs, text, graphics, pictures, video, information, applications, software, music, sound and other files, and their selection and arrangement) are protected by law from unauthorized use.

We grant you a personal, non-exclusive, non-transferable, revocable, limited scope license to use the Service solely for the purpose of viewing and using the applicable Services and for no other purpose whatsoever. Your license to use the Services is limited by these Terms.

User Content

You agree that you are willingly publishing the content on the Service using technology and tools provided by us. You understand and agree that you may not distribute, sell, transfer or license this content and/or application in any manner, in any country, or on any social network or another medium without the explicit written permission of us. We reserve the right to remove and permanently delete any User Content from the Service with or without notice.

Rules of Conduct/Usage

You agree that all your communications with the Communication Channels are public, and thus you have no expectation of privacy regarding your use of the Communication Channels. We is not responsible for information that you choose to share on the Communication Channels, or for the actions of other users.

Privacy and Protection of Personal Information

By using the Service, you agree to the collection and use of your personal information as outlined in this Privacy Policy. We may amend the Privacy Policy from time to time, and we encourage you to consult the Privacy Policy regularly for changes.

Cookies

A cookie is a small data file that we transfer to your computer’s hard disk, generally to quickly identify a user's computer and to "remember" things about the user's visit, such as your preferences or a user name and password. The Service sends cookies to your computer when you access or view the content of us. The information contained in a cookie may be linked to your personal information for purposes such as improving the quality of our service, tailoring recommendations to your interests, and making the Service easier to use. You can disable cookies at any time, although you may not be able to access or use features of the Service.

Third-Party Advertising Companies

We may use third-party advertising companies to serve ads on the Service. We do not provide any personal information to third-party advertising companies on a non-aggregate basis. Our system and the third-party advertising technology may use aggregate information, non-personal information, Our cookies on your hard drive and your use of the Service to target advertisements. In addition, advertisers may use other third-party advertising technology to target advertising on other sites. If advertisements are served to you, a unique third-party cookie or cookies may be placed on your computer. Similarly, third-party advertising companies may provide us with pixel tags (also called “clear gifs” or “beacons”) to help manage and optimize online advertising. Beacons enable us to recognize a browser’s cookie when a browser visits the site on which is a beacon is located, and to learn which banner ads bring users to a given site.

Changing or Deleting Your Information

You may review, update, correct or delete any personal information by changing the applicable information in your profile page on Facebook and/or another social network (s). If you completely delete all this information, your account may become deactivated. If you would like us to delete your record in our system, please contact us and we will attempt to accommodate your request if we are not legally obligated to retain the record.

Security

We have put in place reasonable technical and organizational measures designed to secure your personal information from accidental loss and from unauthorized access, use, alteration or disclosure. However, we cannot guarantee that unauthorized third parties will never be able to overcome those measures or use your personal information for improper purposes. Also please note that email and messaging systems are not considered secure, so we discourage you from sending us personal information through these mediums.

Policy Regarding Children

The Service is not geared toward children under the age of 13 and we do not knowingly collect personal information from children under the age of 13. If we learn that a child under 13 has provided us with personal information we will delete such information from our files as quickly as possible.

Disclaimer of Warranty; Limitation of Liability

You agree that your use of the Service shall be at your sole risk. To the fullest extent permitted by law, We, its officers, directors, employees, and agents disclaim all warranties, express or implies, in connection with the website and your use thereof including implied warranties of title, merchantability, fitness for a particular purpose or non-infringement, accuracy, authority, completeness, usefulness, and timeliness. We make no warranties or representations about the accuracy or completeness of the content of the Service and of the content of any sites linked to the Service; We assume no liability or responsibility for any (i) errors, mistakes, or inaccuracies of content, (ii) personal injury or property damage, of any nature whatsoever, resulting from your access to and use of the Service, (iii) any unauthorized access to or use of our secure servers and/or any and all personal information and/or financial information stored therein, (iv) any interruption or cessation of transmission to or from the Service, (v) any bugs, viruses, trojan horses, or the like which may be transmitted to or through the Service by any third party, and/or (vi) any errors or omissions in any content or for any loss or damage of any kind incurred as a result of the use of any content posted, emailed, transmitted, or otherwise made available via the Service.

In no event will We, its directors, officers, agents, contractors, partners and employees, be liable to you or any third person for any special, direct, indirect, incidental, special, punitive, or consequential damages whatsoever including any lost profits or lost data arising from your use of the Service or other materials on, accessed through or downloaded from the Service, whether based on warranty, contract, tort, or any other legal theory, and whether or not We have been advised of the possibility of these damages. The foregoing limitation of liability shall apply to the fullest extent permitted by law in the applicable jurisdiction. You specifically acknowledge that We shall not be liable for user submissions or the defamatory, offensive, or illegal conduct of any third party and that the risk of harm or damage from the foregoing rests entirely with you.

You agree to indemnify and hold We, and each of its directors, officers, agents, contractors, partners, and employees, harmless from and against any loss, liability, claim, demand, damages, costs and expenses, including reasonable attorney's fees, arising out of or in connection with (i) your use of and access to the Service; (ii) your violation of any term of these Terms of Service; (iii) your violation of any third party right, including without limitation any copyright, property, or privacy right; (iv) any claim that one of your User Submissions caused damage to a third party; or (v) any Content you post or share on or through the Service.

General

By visiting or using the Service, you agree that the laws of UK, without regard to principles of conflict of laws and regardless of your location, will govern these Terms of Service and any dispute of any sort that might arise between you and us.

Contacting Us

If you have any questions about these Terms of Service, please contact us at otoco.contact@gmail.com

2019-01-06

anond:20190106175516

あちこちWebサービス(当然社外)を1つのPasswordで使いまわしてる件についてはどうお諌めすれば……。

っていうか社内のサービスもそのPassなのは

2018-12-20

anond:20181220173808

機器マニュアルにそう書いてあるんや。

初期パスワードpassword って。

勝手に変えたら、後からマニュアル読んだ人が困るやろ?

2018-11-14

接続環境が変化した、不審なアクセスを検知したためログインを制限

やってみたがテザリングだとめっちゃ頻繁にパスワード変更要求されるな

パスワード変更リンクが届くGMail開きっぱなしだ

PASSWORDPASSWORD+2→PASSWORDPASSWORD+2→ で乗り切ってるが

アクセストークンとか保存しろよと思うが、満喫とかで不特定人がログインするような環境も想定してるんだろうな

スマホアプリで表示するワンタイムパスワードとどっちが面倒だろうか…

2018-11-09

接続環境が変化した、不審なアクセスを検知したためログインを制限

A→B→Aとリモホが変化してもやっぱりA→BとB→Aの切り替えの際にパスワード再設定は必要らしい

Aはすこし前にログイン経歴があるからよしとします、とはならないようだ

JR特急乗りながらテザリングで遊んでみたい

なお、PASSWORDPASSWORD2→PASSWORDみたいな変更は可能っぽい

直近にユーザー環境漏れたかもしれない判定をしたパスワードへ再度戻すことができるってアカウントハックアラート意味あんのかそれ

2018-10-09

SSH(d)の不思議

PermitRootLogin yes

PermitRootLogin no

ファイルの先頭側に近い方が優先されるし

PasswordAuthentication noにしても(Rootログイン不可能な状況下として)rootで入ろうとすると

Passwordを聞かれる。謎

2018-09-22

JWTに関してのお伺い

http://b.hatena.ne.jp/entry/s/co3k.org/blog/why-do-you-use-jwt-for-session

適当コメントを書いたら

スーパーエンジニアに「そういうことではない」

と厳しい叱責を受けたため、無能の見識を書いてみた。

「聞くは一時の恥、聞かぬは一生の恥」のとおり、

せっかくの機会のため、びしばしセキュリティに関する認識の甘さを指摘してほしい所存

expの期限と任意セッションが切れないデメリットに対する私見

作ったシステムではexpは約1時間でやってしまいました(機密保持契約違反を恐れ多少ぼかしております)

私は無能なのでたぶんユーザーから報告を受けて

確認している間に1時間はかかるからいいやと思ってしまっていた

師はきっとJWT生成直後3秒でユーザー

「これは、セッションハイジャックか・・・!?

と気づいて通報

そして師が2秒で

「これは、セッションハイジャックだ!」

と検知してセッション遮断、秒速で一億円の被害が出るところを阻止する前提なのではないかと推測している

これは確かにJWTだと厳しそうだ

そもそもログインできるアプリなら

セッションハイジャック成功直後にパスワードを変更された場合

セッション任意に切れることに意味はないのでは、と思えてきたが、浅はかだろうか

(師はログインを即座に検知してセッションを切れるから問題ないのか)

とにかくアカウントロック機能を作れば上記懸念全てにきれい対応できそうに見えている

「定期的な鍵交換が必要」に関する私見

この理屈だと例えば.envに書くような他のkeyも定期的な交換が必要に見える

これはまずい、自分の今までの見識の甘さを思い知らされた

今使っているフレームワークリファレンスを見たが

keyは初回に設定したのみで、定期的な交換を勧める文が見つからない

私の検索力不足なのかと思ったが、もしかして彼らもこの危険性に気付いていないのではないか

JWTはhash化してつないでいる前提で

hashのkeyを総当たりで破る仮定で書く

私は無能なのでライブラリを用いることにしている

32文字keyが生成された

解読時間は下記を参考に、計算windows10電卓アプリを用いて手動で行った

https://ja.wikipedia.org/wiki/%E7%B7%8F%E5%BD%93%E3%81%9F%E3%82%8A%E6%94%BB%E6%92%83

数字大文字文字で約60の時は10桁で20万年と書いているが

現代の解析技術20万倍は速度が出ると仮定して1年として計算する

果たして、どのくらいの速度で鍵はやぶられると推定されるのか

とりあえず60を10乗した時点で(20文字相当)

6.0466176e+17

日本語に直すと60京4661兆7600億年かかる計算となった

実際にはこれが6.0466176e+17倍されさらに3600倍されつまりどういうことだ

これだけ長くともkeyの交換は必要なのであろうか

そもそも師は何年で交換したら安全と書いていないが、何年なら安全という意見だったのだろうか

「JWTはセッションIDを含めれば安全」に関する私見

から「そういうことではない」と指摘された点である

私の理解ではとかくuser_idのみ必要なら意味がないと思っていたため落ち込んでいる

まず、IDとpassを内蔵するネイティブアプリに対するapiサーバでの実装経験しかないこと

JWTが切れたら都度IDとpassを投げる方向でリフレッシュトークン実装しなかったことを告白しておく

そのためapiサーバ上記前提で用いた場合に考えたことを書く

webアプリのJWT実装経験はないので、そちらの論は差し控えさせていただく

JWT送信→user_id取得

では危険

JWT送信セッション(cookie形式?)送信切り替え→セッションからuser_id取得

だと安全になるのか検討する前提で記載する

とりあえず思いついたのは下記だった

通信途中で傍受されてログイン情報が奪われる危険が上がる
アプリから直接ログイン情報が奪われる危険が上がる

通信途中で傍受される危険に関して

tokenはheaderにbearerで付けユーザーID(あるいはそれに代わる特定可能識別子)が含まれ

おそらく一般構成仮定で書く

https通信するのでパケットキャプチャによる傍受は不可能と思っていた

(http通信するのはJWTとかcookieとか関係なく傍受できるため考慮しない)

0に何をかけても0なので、何回送っても解読されないならJWTを何回送っても問題ない

というかJWTが抜けるなら同様にheaderに付けるcookieでも抜けると思うので

JWTだからといって危険性に差はない、という論拠により安全性は変わらないという個人的結論になった

※余談だが、たまに送る回数が少ない方が安全という

言説を見るのだが、個人的には上記理由で納得できていない

アプリから情報が抜かれる危険性に関して

クライアントネイティブアプリ場合

攻撃者がアプリに保存されたJWTが取得できるならIDもpassも同じ方法で抜けそうに見えた

(厳密には保存場所が違ったかもしれんが実装依存なので同一とする)

その前提のため、わざわざ

JWT送信セッション(cookie形式?)送信セッションからuser_id取得 

接続しても、おそらくcookie形式で送れる何かもJWTらと同じ方法で抜かれると思われる

まりcookieだろうがJWTだろうがアプリから直接情報が抜かれる危険性には変わりがないという結論になった

結論

まりcookieだろうがjwtだろうがidpasswordの組だろうが同じ危険性で抜かれる可能性があり、いずれでも同じことができるなら

JWT→user_id

でいいじゃん、わざわざcookieと同様の形式を間に挟むの無駄じゃん、となりコメント発言に至った

ここまで書いて、常にJWTにsession_idを含めておいて送ることを意図されていた可能性にも気づいたが

それならもっと無駄なため考慮しない

セッションにするメリットとして唯一思いついているのは任意サーバ側でセッションを切れることだが

それを指していたのであろうか

それは最初段落問題と同一と思っている

余談だが、ブコメ雰囲気日和って「ユーザーIDのみ入れ」(そもそもJWTを自然に作れば入るのだが)

というセッションストア的にJWTに他の情報を入れると入れない時に比べて危険性があがることに同意したような記載をしてしまったが

結局JWTが奪えたら中身に関係なくbearerとしてセットして接続するだけなので

正直JWTを使った時点でついでにセッションストアのように使おうが使わまいがセキュリティ的にそこまで変わらないのでは、と思っている

強いて上げるならセッションに保存している内容が分かる可能性があり、サーバー内部の実装が推測できる危険があるくらいだろうか

でも暗号化したらよいのでは、と思った

私的結論

expの期限と任意セッションが切れないデメリットに関して

expを適切に設定しつつ、必要ならアカウントロック機能を入れる

(アカウントロック機能はJWTに関係なく被害の増加を抑えられる可能性がある)

定期的な鍵の交換について

長いkeyを設定すれば不要

「JWTはセッションIDを含めれば安全」について

少なくともapiサーバネイティブアプリに関して、セッションIDを含めても危険性は変わらない

正直webアプリでも大して変わらんのでは、と思っているのは内緒である

と思ったので短慮なところ、見落としている視点があるようなら今後のためにご教示をいただきたく

以上、よろしくお願いいたしま

2018-03-16

ネットバンクで悶絶した

普段ATM現金の出し入れに使っている銀行口座からネットで振り込もうとしたら、ワンタイムパスワードが使えなくて悶絶した

経緯

  1. 振込のページからワンタイムパスワード入力を求められたので、アプリを起動して6桁の数字入力(1度目)
  2. パスワードが違いますエラーが出たので、数字を押し間違えたかと思い、別の番号に変更された6桁の数字入力(2度目)
  3. パスワードが違いますエラーが再び出て、しばらくしてから再びお試しくださいのメッセージとともに振込のページから先に進めなくなる

原因

思ったこ

ログイン ユーザー登録
ようこそ ゲスト さん